Severity
5.3MEDIUM
EPSS
0.4%
top 42.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 25
Latest updateOct 29

Description

Brocade SANnav before v2.3.0a lacks protection mechanisms on port 2377/TCP and 7946/TCP, which could allow an unauthenticated attacker to sniff the SANnav Docker information.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages2 packages

CVEListV5brocade/brocade_sannavbefore v2.3.0a

🔴Vulnerability Details

2
CVEList
Protection mechanisms2024-04-25
GHSA
GHSA-26w9-32mp-48g9: Brocade SANnav before Brocade SANnav v22024-04-25

📋Vendor Advisories

1
Red Hat
kernel: Bluetooth: Call iso_exit() on module unload2024-10-29
CVE-2024-4159 (MEDIUM CVSS 5.3) | Brocade SANnav before v2.3.0a lacks | cvebase.io